ForcepointNGFWAdvanced

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


Attribute Value
Type Workbook
Solution Forcepoint NGFW
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Selection Criteria Transformations Ingestion API Lake-Only
CommonSecurityLog Activity in "File_Malware-Blocked,URL_Category-Accounting"
DeviceAction == "Discard"
DeviceAction != "Discard"
DeviceAction != "Terminate"
DeviceFacility == "Inspection"
DeviceProduct in "Alert,Audit"
DeviceVendor in "FORCEPOINT,Forcepoint"
Message contains "Login succeeded"
Message contains "Logout"
Message contains "created"
Message contains "modified"
Heartbeat ? ?
Perf CounterName contains "Processor Time" ?
ThreatIntelligenceIndicator

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Workbooks · Back to Forcepoint NGFW